Icinga Web version 2.10 suffers from an authenticated remote code execution vulnerability.
5ae77e3095ce6989922bf3a2775d0dd099c717b89f3ff05f05e5eb7e64d82fdf
SASS BILLER version 1.0 suffers from a persistent cross site scripting vulnerability.
654f3b36762d87c7b996325741c8387cb1f775806becdb88b75239ee4a26bd56
Finounce version 1.0 suffers from a persistent cross site scripting vulnerability.
f4e80892c45d7bb31b008b5a17b3f020ae5b1f286b58420e0b5771ceccff362b
WordPress Force Images Download plugin version 1.8 suffers from a cross site request forgery vulnerability that can enable server-side request forgery attacks.
67e9a5b855786404166475b9a48f2a6e7f4ffd1808b6238b93a3ddf567bcae03
ICOGenie version 1.0 suffers from a persistent cross site scripting vulnerability.
5743d5fd6088ddc9931ce736d70d36b9cf416cf0558e607ea8bbfa1ea474b0c7
Listplace Directory Listing Platform version 3.0 suffers from a persistent cross site scripting vulnerability.
5680dcb3e1cdddda2d8f1dc0337df1255d2cd8746720fa4c1c048c6a959912a8
ChainCity Real Estate Investment Platform version 1.0 suffers from a remote SQL injection vulnerability.
c8e51d01cb9308354ae0d8ede04b6f0deb9e2c33e5ec7b85765d59ad51b93ab3
ChainCity Real Estate Investment Platform version 1.0 suffers from a persistent cross site scripting vulnerability.
e4736b511f7c989ad7268b68cc0c642df9173f6a7b5c25e5f5297c904aec2f7d
Clarity PPM version 14.3.0.298 suffers from a persistent cross site scripting vulnerability.
04d24161185fc017ddb0c8edd7efe73bd4c1c6c17af66a7b27eec10efbe0f610
Ubuntu Security Notice 6231-1 - It was discovered that the XFS file system implementation in the Linux kernel did not properly perform metadata validation when mounting certain images. An attacker could use this to specially craft a file system image that, when mounted, could cause a denial of service. It was discovered that the IP-VLAN network driver for the Linux kernel did not properly initialize memory in some situations, leading to an out-of- bounds write vulnerability. An attacker could use this to cause a denial of service or possibly execute arbitrary code.
2e365ffb339dfe2be44bdbad6d687359019a0b108d3006f7adbc0e5c4b3f56ff
WBCE version 1.6.1 suffers from a persistent cross site scripting vulnerability.
c17b616715baffae3d84e0d4550487c0ddcd5bf0f23819f9fafe7404baa9ed74
BM IT CMS version 1.0 appears to leave default credentials installed after installation.
c9b14e07c761d1a1d273831be553637e5b7268488ef96287bdf4dcae5a620c37
Ubuntu Security Notice 6219-1 - It was discovered that Ruby incorrectly handled certain regular expressions. An attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 20.10 and Ubuntu 20.04 LTS. It was discovered that Ruby incorrectly handled certain regular expressions. An attacker could possibly use this issue to cause a denial of service. This issue exists because of an incomplete fix for CVE-2023-28755.
00959ed34366bcee4d18cd76de6ced7a9e2b44c45aaa6377bd02caaa7877b79e
Chrome suffers from a heap use-after-free vulnerability in device::OpenXrApiWrapper::InitSession. Versions affected include Google Chrome 114.0.5735.45 (Official Build) and Chromium 116.0.5806.0 (Developer Build).
31d602a3d96e944d063ead1d9fbfca2a6e74125a6f3f1b9fd9de66da1262572c